Total CVEs

138,728

Critical Severity

3,597

High Severity

12,893

Last 7 Days

1,662
Quick preset (or use dates below)
Clear Filters
๐Ÿ“… Showing Year: 2026 (January 1 - December 31, 2026) View All Years โ†’
Showing 2,021 - 2,040 of 13,055 CVEs
CVE-2026-47233 MEDIUM - 6.5

Admidio: Any logged-in user can delete inventory fields via `mode=field_delete` โ€” incomplete fix of #2024

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47234 MEDIUM - 4.4

Admidio writes session IDs and auto-login cookie values to application logs

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47232 MEDIUM - 4.3

Admidio PKCS#12 private key export action lacks CSRF protection

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47230 MEDIUM - 6.5

Admidio: IDOR in documents-files.php allows cross-folder file rename and description changes by unauthorized uploaders

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47229 MEDIUM - 5.4

Admidio: CSRF in SSO client `enable` action toggles SAML/OIDC clients without token validation

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47228 MEDIUM - 5.2

Admidio's CSRF in registration `send_login` mode resets arbitrary user passwords

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47227 MEDIUM - 6.5

Admidio module-administrator can delete or reorder categories owned by other modules via dead authorization check in `modules/categories.php`

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47226 MEDIUM - 6.5

Admidio: Authorization bypass in file_delete enables cross-folder file removal by authenticated users without delete privileges

Vendor: composer
Product: admidio/admidio
Published: May 29, 2026
Source: GitHub
CVE-2026-47213 MEDIUM - 6.5

Boxlite is a sandbox service that allows users to create lightweight virtual machines (Boxes) and launch OCI containers within them to run untrusted code. In versions 0.8.2 and prior, Boxlite allows users to configure a timeout for services running inside the virtual machine. When the timeout is tri...

Vendor: pip
Product: boxlite
Published: May 29, 2026
Source: GitHub

Symfony: Twilio SMS Notifier allows unauthenticated webhook injection due to missing X-Twilio-Signature verification

Vendor: composer
Product: symfony/symfony
Published: May 29, 2026
Source: GitHub
CVE-2026-47184 MEDIUM - 6.5

zeroconf has unbounded DNS record cache that allows LAN-local memory exhaustion via multicast flood

Vendor: pip
Product: zeroconf
Published: May 29, 2026
Source: GitHub
CVE-2026-48811 MEDIUM - 4.3

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.221, FreeScout allows a non-admin user to permanently delete an internal note (private thread) from any conversation, even after that user's access to the mailbox containing the conversation has...

Vendor: freescout-help-desk
Product: freescout
Published: May 29, 2026
Source: NVD
CVE-2026-48810 MEDIUM - 4.3

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.221, while investigating the ThreadPolicy::delete issue reported previously, the same missing mailbox membership check was found in the sibling ThreadPolicy::edit method. A user with the PERM_EDIT_CO...

Vendor: freescout-help-desk
Product: freescout
Published: May 29, 2026
Source: NVD
CVE-2026-45352 MEDIUM - 5.3

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.43.4, negative chunk-size in chunked Transfer-Encoding causes unbounded memory allocation and process crash. The ChunkedDecoder::read_payload function in cpp-httplib (httplib.h) parses the chunk-size field o...

Vendor: yhirose
Product: cpp-httplib
Published: May 29, 2026
Source: NVD
CVE-2026-45294 MEDIUM - 5.3

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.219, the password reset endpoint returns visually distinct responses depending on whether the submitted email address belongs to an existing user account, allowing unauthenticated attackers to enumer...

Vendor: freescout-help-desk
Product: freescout
Published: May 29, 2026
Source: NVD
CVE-2026-44640 MEDIUM - 4.5

NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. Prior to 0.24.14, aio->prov_data is stored as nni_quic_conn* during dialing, but read as ex_quic_conn* during dialer close. This type confusion causes invalid object interpretation and leads to close-path hang/crash behavior. T...

Vendor: nanomq
Product: nanomq
Published: May 29, 2026
Source: NVD
CVE-2026-44287 MEDIUM - 6.3

FastGPT is an AI Agent building platform. Prior to 4.15.0-beta1, the JavaScript sandbox worker at projects/code-sandbox/src/pool/worker.ts:356 blocks dynamic import() with the regex /\bimport\s*\(/.test(code). JavaScript syntax accepts a block comment between import and (; the regex matches only ASC...

Vendor: labring
Product: FastGPT
Published: May 29, 2026
Source: NVD
CVE-2026-42500 MEDIUM - 5.3

Decoding a paletted BMP file with an out-of-range palette index results in a panic when accessing pixels in the invalid image.

Vendor: golang.org/x/image
Product: golang.org/x/image/bmp
Published: May 29, 2026
Source: NVD
CVE-2026-34127 MEDIUM - 4.8

A stored cross-site scripting (XSS) vulnerability has been identified in the web management interface of TP-Link's TL-SG108PE v5 switch due to improper sanitation of the SYSNAM configuration parameter during configuration file import. An attacker with administrator access can inject malicious s...

Vendor: TP-Link Systems Inc.
Product: TL-SG108PE v5
Published: May 29, 2026
Source: NVD
CVE-2026-47183 MEDIUM - 6.5

zeroconf: Unbounded exception-dedup state retains packet buffers via traceback frame locals, enabling LAN-local memory exhaustion

Vendor: pip
Product: zeroconf
Published: May 29, 2026
Source: GitHub